Team PS3Xploit over at psx-place.com has released software tools for dumping and writing NOR/NAND flash on PS3 consoles with original firmware (OFW) 4.82 based on the previously released webkit exploit! Dumping supports both OFW 4.81 and 4.82. The PS3Xploit development team behind this impressive feat consists of: W (nonoscript, Research & Testing), esc0rtd3w (Debugging, Research & Testing), habib (ROP & Debugging), bguerville (ROP/nonoscript & Debugging). These tools allow dumping, patching and overwriting original firmware (OFW) 4.82 with a custom firmware (CFW). If the QA flag is enabled after installing CFW 4.82 it can also be downgraded to lower CFW version. However, not all PS3 models are supported, here's a brief list of the currently supported ones...

####
BRICK WARNING!!!
You have to make sure the correct flsh.hex file is on the flash drive and in the far right USB slot!

4.82 flsh.hex MD5: 8e156c99101bf36ec3edb832982ae46d
####

====
PLEASE READ FIRST:
It's essential not to flood the browser memory with junk before running the exploit. The reason for this is that due to javascript core memory usage limitations we are scanning several times a small range of browser memory (a few Mb) to find some essential data in RAM, if the memory is flooded then the range to scan becomes much larger & the probabilities that our data is found in the smaller range decrease dramatically....

So in short, never use the browser or set a homepage you cancel before running the exploit!
If you need to, set the homepage to 'blank', close the browser then reopen it to start the flash writer.

Usage Tips:
1) Try using a LAN connection or a solid WiFi connection during exploitation. A weak signal can cause problems.
2) If the exploit takes more than 5 minutes to work, reload page, browser, or restart console and try again.
3) If you are using a LAN connection and experience network issues, make sure all cables to router are in working order.
====

Steps:

1. Setup a small Web server on pc or smartphone. A custom miniweb application has been created by Aldo, and supplied to host files if you would like to use it. Don't come to us for explanations about how to run a http server though. Google it.

2. Extract the files from release to your http server root folder.

3. Copy the "flsh.hex" file from release folder to root of flash drive.

4. Put a FAT32 USB key in port closest to BD Drive (/dev_usb000).

5. DOUBLE-CHECK your flash drive on XMB to make sure it shows up under Music, Photos, Videos, etc.

Awesome, thanks to all who put in all that work!!! I thought it would be sometime next year before it gets released. I got it to work after several attemps on a cechL01. Looking forward to when my other PS3 superslim becomes hackable as well.

When PS3 SuperSlim (CECH-4xxx) is exploited for latest firmware I might consider updating the Hack-O-Meter. Still, the highest rating normally requires both hardware and software hacks fully disabling any protection in the system, this is not the case for PS3.

Excellent solution for original Fat consoles, cheers to all involved in putting this together. So far applied successfully on a C03, G03 A03(NTSC Jap) that had been hanging around waiting for some Teensy treatment. On the downside the temptation might now be for people not to open the console and give it a good clean and re-paste during the downgrade process. I've seen some disgusting examples over the years! Looking forward to the 4.83 update that 'Improves the quality of the system performance'

A-First confirm with MinChkVer PUP that your console is compatible.
* If your console is Super Slim or if it shows a min version equal to 3.60 or higher, your console is NOT compatible, and you will brick your console if you continue with the following steps.
* If your PS3 Slim shows 3.56 or a lower version, you can continue.
* If your PS3 is a phat model, IT IS compatible and don't need to check the min version.

B-MAKE SURE that you put flsh.hex in the root of a pendrive and you inserted it in the port closest to the Bluray drive (usb0) and that the external device is visible on XMB on the music/video/picture columns.

* If the device does not show, the PS3 will freeze when you run the exploit. Restart the console and everything will be fine.
* For a safest process, verify that the MD5 of flsh.hex on your USB is 8E156C99101BF36EC3EDB832982AE46D

C-Web Server Setup:
1-Extract the zip file of NAND/NOR Writer for 4.82 in a folder on the desktop
2-Open the folder and create a new folder named: htdocs
3-Select the files "nand-482.html", "nor-482.html" and "xp_rel_writer10.js", CUT the files and PASTE them inside the folder htdocs
4-Run miniweb.exe server. Allow access it if your firewall prompts for it.
5- Access the server from the PS3 browser using the IP shown as host in the server window.
Example: http://192.168.1.123:8000

Or skip all these steps and simply use http://redthetrainer.com/ps3/ from the PS3 browser.

D-Set the url for the nand or nor html as homepage of the PS3 browser, clean the cache, close the browser and open it again.

* Alternatively set as homepage: http://redthetrainer.com/ps3/

E-Click the button and wait until the process complete and the PS3 shutsdown. It should take no more than 10 minutes.

* DO NOT STOP the process once it have been started.

* If it takes more than 10 minutes or if it show success without turn off the PS3 automatically, restart the console and repeat the process again. You can repeat it multiple times, it eventually will work.

* Remember to eject any DISC from the Bluray drive before install CFW.
* Once in CFW, enable the QA Flags... it will be useful if you need to change CFW later.
* Also install Rebug Toolbox and get your eid_root_key as one of the first things.
* Create a new user without PSN and set it as default user. It will prevent accidental auto-login that could cause a ban from PSN.
* Never login to PSN with syscalls enabled... Always use SEN Enabler, PSNpatch or webMAN MOD to disable the syscalls before play online.
* Do not cheat if you go online and enjoy CFW!